2024-07-27 - 14:23

Dates and Events:

OSADL Articles:

2023-11-12 12:00

Open Source License Obligations Checklists even better now

Import the checklists to other tools, create context diffs and merged lists


2023-03-01 12:00

Embedded Linux distributions

Results of the online "wish list"


2022-01-13 12:00

Phase #3 of OSADL project on OPC UA PubSub over TSN successfully completed

Another important milestone on the way to interoperable Open Source real-time Ethernet has been reached


2021-02-09 12:00

Open Source OPC UA PubSub over TSN project phase #3 launched

Letter of Intent with call for participation is now available



OSADL Special Events

OSADL Special Events

COOL - Compact OSADL Online Lectures



Online event

What is COOL?

COOL - Compact OSADL Online Lectures: Open Source meets Industry

  • COOL is an OSADL webinar series.
  • COOL takes place regularly once a month and covers new and state-of-the-art topics on Open Source software in industry, either on legal or on technical aspects.
  • COOL editions each consist of two lectures covering a special "Open Source meets industry" topic followed by a discussion round. The first "basic" lecture provides basic knowledge with regard to the respective topic and the second "advanced" lecture dives deeper into the topic and highlights special aspects. The discussion round gives all participants the possibility to ask questions and discuss with the respective speakers and the audience.
  • COOL speakers are OSADL experts on the one hand and external specialists on the other hand who kindly agreed to share their expert knowledge on the respective topic.
  • COOL is a virtual event. The lectures are held by live video streams. Speakers will be available for questions and discussion in a video conference which will take part subsequent to the live video streams.
  • COOL in general is designed to provide support how to best and compliantly use Open Source software in industry.

COOL November 2024 edition

Open Source tools for compliance with CRA and similar regulations
Wednesday, November 27, 2024, 2pm to 4pm CET

Agenda COOL November 2024 edition:

2:00pm to 2:45pm CET:

Theoretical part: The future of cybersecurity, today: Free and Open Source tools for compliance, Philippe Ombredanne, Lead maintainer of AboutCode

2:45pm to 3:30pm CET:

Practical part: How to use Open Source tools and open data to automate compliance for supply chain security, Philippe Ombredanne, Lead maintainer of AboutCode

3:30pm to 4:00pm CET:

Discussion and possibility to ask questions

Description COOL November 2024 edition:

Managing Open Source components – especially their security, licensing and provenance – is a critical part of the Software Composition Analysis (SCA) process. SCA is now a prerequisite for modern organizations to comply with the US Software Bill of Materials (SBOM) mandate, EU Cyber Resilience Act (CRA), and other regulations, but also critically strengthens software supply chain security and ensures software supply chain integrity.

Automating the regulatory compliance for software supply chain security makes the process easier. And with Open Source tools, compliance automation is more accessible to more developers and organizations.

Philippe Ombredanne is the lead maintainer of the AboutCode stack of Open Source tools for SCA, including ScanCode, VulnerableCode, and DejaCode. He will demonstrate how to use (and extend) these Open Source tools and open data for practical SCA and automate them for compliance. OSADL gratefully acknowledges his participation in the November COOL session.

Recommended audience COOL November 2024 edition:

Open Source officers, security officers, software developers and engineers, system integrators, employees of internal legal departments, external legal and security advisors, employees of QA departments, etc.

About the speakers of the COOL November 2024 edition:

- Philippe Ombredanne, Lead maintainer of AboutCode and CTO of nexB Inc.: Philippe Ombredanne is a FOSS hacker passionate about enabling easier and safer reuse of Open Source code. He is the lead maintainer of the AboutCode stack of Open Source tools for Software Composition Analysis and license and security compliance, including the industry-leading ScanCode, DejaCode, Package-URL (PURL), PurlDB, and VulnerableCode, and co-founder and CTO of nexB, which provides professional services for the AboutCode stack. Philippe contributes to other Open Source projects, including the Linux kernel SPDX-ification, CycloneDX, SPDX, ClearlyDefined, strace, ORT, and several Python and SCA tools.

Past COOL webinars

(Click on title to expand display.)

2024

2023

2022

2021

2020


Please click on the respective COOL edition in order to display the full agenda and more details about the lectures and the respective guest speakers.

Download of COOL overview September - December 2023 as PDF file (v4)
Download of COOL overview January to May 2023 as PDF file
Download of COOL overview September to December 2022 as PDF file
Download of COOL overview January to May 2022 (new - v7) as PDF file
Download of COOL overview September - December 2021 as PDF file
Download of COOL overview January - May 2021 as PDF file

COOL conference language

The COOL sessions will be in English language.

COOL registration

Please use the online registration form to register for a particular COOL edition: Online registration form.
The access data will be sent to the registered participants shortly before the event.

COOL participation fee

Participation in COOL is free of charge.

COOL feedback

We would appreciate if participants of COOL completed and submitted the following feedback questionnaire in order to better meet their requirements and consider their suggestions in future events: Feedback sheet. Thanks in advance.

COOL presentations

The presentations and video clips of all COOL sessions will be made available after the event. Material of the basic lecture will be publicly available, material of the advanced lecture lecture will be available exclusively for OSADL members or participants with login.

COOL Presentations and video clips (Member or participant login required to display material of the advanced lectures or, in this case, of the second and third lecture)

Privacy policy

When you register for participation in the event you agree that the personal data you enter in the registration form will be processed at OSADL as necessary (see our privacy policy).

You may revoke this agreement at any time by email, mail or phone using the communication data provided at the imprint page, but this will also cancel your registration.

Questions?

Please do not hesitate to contact us in case you have further questions:
Andrea Ruf
officeªosadl.org
Phone.: +49 6221 98504 13